
Palo Alto NetworksCertified Network Security Professional
Domain 3Objective 1
3.1 Explain the Security Efficacy of Palo Alto Networks NGFW and Prisma SASE Products (e.g., Security and NAT Policy, User-ID, App-ID, Decryption, Monitoring and Logging) NETWORK-SECURITY-PROFESSIONAL Practice Questions (Page 2)
Part of the Platform Solutions, Services, and Tools domain, which accounts for 30% of the NETWORK-SECURITY-PROFESSIONAL exam.
23questions here
5free pages
5concepts
30%of the exam
Questions 6–10
- 6
A network administrator notices that a security policy intended to block a specific application is not working. The application is using a non-standard port and is encrypted. Which feature is essential to ensure the policy can identify and block the application regardless of port or encryption?
Select an answer first - 7
A security analyst is investigating a potential data breach. They need to determine which users accessed a specific internal server over the past week and what applications they used. Which feature of the Palo Alto Networks NGFW would provide this information most efficiently?
Select an answer first - 8
Which type of log in Palo Alto Networks NGFW records the action taken by a security policy on a session?
Select an answer first - 9
What is the primary purpose of App-ID in Palo Alto Networks NGFW?
Select an answer first - 10
An organization uses Prisma SASE to enforce security policies for remote users. They want to allow access to a specific SaaS application only for users in the 'Marketing' group. User-ID is integrated with the identity provider. Which configuration is required to enforce this policy?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Palo Alto Networks. “NETWORK-SECURITY-PROFESSIONAL” is a trademark of its owner, used for identification only.